Build managed self-service repository using AWS Service Catalog

   Go back to the Task List

  « 3: Create IAM Users    5: Create Product in Service Catalog »

4: Create IAM Role

You are going to configure the service catalog in such a way that the users can provision products only through the service catalog. They cannot provision the product directly from the console. For this configuration, a role is created which service catalog uses to create the products.

  1. Go to IAM Management Console. Click on the Roles menu in the left and then click on the Add role button.


  2. On the next screen, select Service Catalog as the AWS Service and click on the Next: Permission button.


  3. On the next screen, you select AdministratorAccess as the policy and click on the Next: Tags button. You are configuring for the administrative access because it will simplify the creation of services. But in the actual production implementation, such roles are configured with specific permissions.


  4. Click on the Next: Review button on the next screen.

  5. On the next screen, enter the role name as awsdojocatalogrole and click on the Create role button.


  6. The role is created in no time. Let’s create the products in the AWS Service Catalog.